Cybersecurity Guidelines for FSTI Providers
3.
Secure Storage Solutions and Access Controls - Data storage environments must be secured with multiple layers of protection that includes the deployment of firewalled servers and strict physical security measures to prevent unauthorised access. - Implement robust access control mechanisms to ensure that only authorised personnel can access sensitive data. Access control mechanisms based on international standards include: multi-factor authentication (MFA), role-based access control (RBAC), and the principle of least privilege (PoLP). 5
4.
Training and Awareness
- Training comprises an explanation of the significance of data protection, focusing on proper handling, retention, and disposal of sensitive information. - Update training materials regularly to cover new regulatory changes, technological advancements, and emerging threats that impact data protection.
5 A Balanced Approach to Permission Control. https://www.doc-elite.co.uk/post/a-balanced-approach- to-permission-control-1
30
Made with FlippingBook. PDF to flipbook with ease